Skip to content
SRE

Список недели

Все такие вакансии — одним письмом

Сейчас вы читаете одну вакансию. Таких же на витрине сотни, и каждую неделю выходят новые. Выберите, что присылать, оставьте почту — список придёт сам, без поисков и без возвращения сюда.

Считаем, сколько вышло за прошлую неделю…

Первое письмо приходит сразу, дальше — раз в неделю. Отписка в один клик из любого письма, адрес больше никуда не уходит.

SRE

Defensive security engineer (F/N/H)

leboncoin

Удалённоsenior

Откликнуться на сайте работодателя

Описание вакансии

Description Du Poste
*leboncoin, est le 1er site généraliste de vente entre particuliers en France, leader sur les marchés de l’immobilier et l’automobile, acteur clé sur les biens de consommation de seconde main et sur l’emploi. Chaque mois leboncoin est plébiscité par 30 millions de Français qui apprécient la richesse de son offre et la facilité des échanges qu’il permet au quotidien.

leboncoin a été élu Marque préférée des Français dans les catégories “site de seconde main”, “immobilier” et “automobile” en 2026.*
Notre plateforme est entièrement hébergée sur AWS, s'appuie sur Kubernetes et est développée par près de 800 collaborateurs Product & Technology répartis dans plus de 70 Feature Teams.

Dans le cadre de la relocalisation progressive des activités cybersécurité historiquement opérées par le groupe Adevinta, nous construisons aujourd'hui une organisation cybersécurité autonome capable d'accompagner durablement la croissance de leboncoin.

Rejoindre cette équipe aujourd'hui, c'est participer directement à la construction de cette nouvelle capacité.

Exigences du poste
Nous recherchons un(e)
Detection & Incident Response Engineer
pour rejoindre notre équipe Cyber Defense.

Vous ne rejoindrez pas une organisation cybersécurité déjà complètement construite : vous participerez directement à sa construction.

En collaboration avec notre Defensive Engineer déjà en poste, vous constituerez le cœur de la capacité Cyber Defense de leboncoin.

Ensemble, vous assurerez le fonctionnement quotidien des activités de détection et de réponse aux incidents tout en contribuant à faire évoluer progressivement les processus, les méthodes et les capacités de Cyber Defense dans le cadre du carve-out avec Adevinta.

Ce poste combine :

  • une forte activité opérationnelle ;
  • des investigations techniques complexes ;
  • de la réponse aux incidents ;
  • de l'amélioration continue ;
  • de la structuration des capacités Cyber Defense.

Vous resterez pleinement impliqué dans les activités techniques tout en contribuant à construire les futures pratiques de Cyber Defense de leboncoin.

Ce que vous ferez :
Participer aux opérations quotidiennes de Cyber Defense
Vous contribuerez directement au fonctionnement quotidien de notre capacité de détection et de réponse aux incidents.

Vous serez notamment amené à :

  • analyser les alertes de sécurité escaladées par notre MSSP ou les équipes internes ;
  • qualifier les événements de sécurité ;
  • conduire les investigations techniques ;
  • réaliser des analyses de logs et des investigations avancées ;
  • conduire des investigations de type Digital Forensics lorsque nécessaire ;
  • participer aux activités de Threat Hunting ;
  • accompagner les équipes techniques dans les actions de remédiation ;
  • contribuer aux analyses post-incident et aux retours d'expérience.

Ce poste reste résolument hands-on.

Vous passerez une part importante de votre temps à investiguer et résoudre des incidents de sécurité.

Répondre aux incidents de sécurité
Vous jouerez un rôle majeur dans la gestion des incidents de sécurité.

À ce titre, vous serez amené à :

  • conduire les investigations techniques lors des incidents majeurs ;
  • coordonner les actions techniques de réponse ;
  • assurer le rôle d'Incident Commander lorsque la situation le nécessite ;
  • coordonner les équipes Produit, Infrastructure, Platform, Corporate IT et Cloud ;
  • collaborer avec les équipes Privacy, Legal et Communication lors des incidents majeurs ;
  • coordonner les investigations avec les équipes cybersécurité d'Adevinta lorsque des incidents concernent plusieurs entités du groupe ;
  • participer aux exercices de gestion de crise.

Améliorer nos capacités de détection
Vous participerez activement à l'amélioration continue de nos capacités de détection.

Vous contribuerez notamment à :

  • développer de nouveaux cas d'usage de détection ;
  • améliorer les règles SIEM ;
  • optimiser la qualité des alertes ;
  • réduire les faux positifs ;
  • améliorer les processus d'investigation ;
  • participer à l'automatisation des investigations.

Construire la future capacité Incident Response de leboncoin
Ce poste ne consiste pas uniquement à opérer.

Vous participerez directement à la construction de notre future capacité Incident Response.

Vous contribuerez notamment à :

  • définir les processus locaux de gestion des incidents ;
  • adapter les processus hérités d'Adevinta au contexte de leboncoin ;
  • rédiger les playbooks de réponse ;
  • définir les procédures d'escalade ;
  • participer à la définition des indicateurs opérationnels ;
  • améliorer en continu notre niveau de préparation.

Vous deviendrez progressivement un élément clé de notre capacité Incident Response.

Participer au carve-out cybersécurité
Dans les prochaines années, leboncoin construira progressivement son autonomie vis-à-vis du groupe Adevinta.

Vous participerez activement à cette transformation.

Vous travaillerez régulièrement avec les équipes cybersécurité du groupe afin de :

  • assurer le transfert des connaissances ;
  • reprendre progressivement les responsabilités opérationnelles ;
  • documenter les processus locaux ;
  • maintenir une coopération efficace pendant toute la période de transition.

Participer au dispositif d'astreinte
Vous participerez au dispositif d'astreinte cybersécurité.

À ce titre, vous serez amené à :

  • intervenir lors d'incidents de sécurité en dehors des heures ouvrées ;
  • conduire les investigations techniques nécessaires ;
  • coordonner les actions de réponse ;
  • assurer une communication efficace avec les différentes parties prenantes ;
  • accompagner le retour à un fonctionnement normal.

Votre rôle dans l'équipe

  • Vous travaillerez en binôme avec notre Defensive Engineer.
  • Ensemble, vous constituerez le cœur de la capacité Cyber Defense de leboncoin.
  • Ce poste ne comporte pas de management hiérarchique. En revanche, vous exercerez un véritable leadership technique.
  • Vous serez reconnu comme un référent sur les sujets de détection, d'investigation et de réponse aux incidents et contribuerez activement à faire évoluer les pratiques de l'équipe.

Rejoindre leboncoin, c'est :

  • rejoindre une petite équipe ayant un impact direct sur la sécurité de l'une des plus grandes plateformes numériques françaises.
  • contribuer à protéger des millions d'utilisateurs dans un environnement Cloud Native moderne.
  • travailler aux côtés d'équipes Produit, Engineering, Platform et Infrastructure particulièrement matures.
  • participer à un projet unique : construire la future capacité Cyber Defense de leboncoin dans le cadre de son autonomisation progressive vis-à-vis du groupe Adevinta.

Si vous aimez autant les investigations techniques que les défis de construction d'une organisation, ce poste vous permettra d'avoir un impact concret, durable et visible sur la cybersécurité de l'entreprise.

Responsabilités liées au poste

  • Minimum 5 ans d’expérience (post diplôme) sur des rôles d’analyste sécurité niveau 2 et d’ingénierie défensive
  • Nous recherchons avant tout une personne passionnée par la Cyber Defense et les investigations techniques.
  • Vous disposez d'une expérience solide dans plusieurs des domaines suivants : Incident Response / Digital Forensics / Threat Hunting / Detection Engineering / SIEM Engineering / Scripting et automatisation / Endpoint Detection & Response (EDR) / Investigation Cloud AWS / Kubernetes Security / Analyse de logs / Gestion de crise cyber.
  • Une expérience sur plusieurs des technologies suivantes : Elastic SIEM / CrowdStrike / Wiz / AWS / Terraform / GitOps / CI-CD / Langage de scripting Python / Kubernetes / incident.io / Jira.

Un usage quotidien de l’IA et une mindset tourné vers l’automatisation

Ce que nous apprécierons particulièrement :

  • Vous aimez comprendre le fonctionnement des systèmes.
  • Vous appréciez les investigations complexes.
  • Vous savez garder votre sang-froid pendant les incidents.
  • Vous êtes capable de prendre des décisions dans des situations où les informations sont incomplètes.
  • Vous aimez partager vos connaissances.
  • Vous aimez autant construire des processus que résoudre des problèmes techniques.
  • Vous êtes pragmatique, autonome et orienté résultat.

Enfin, vous avez envie de rejoindre une équipe où chacun contribue directement à construire une capacité cybersécurité moderne plutôt qu'à simplement faire fonctionner une organisation déjà en place.

Avantages du poste

  • Des conditions de travail agréables (locaux, télétravail…)
  • Une rémunération attractive
  • Une carte tickets restaurants et une couverture mutuelle et prévoyance efficace et compétitive et plus

**Chez leboncoin, nous sommes convaincus que la diversité des parcours, des expériences et des points de vue est une richesse essentielle. Cet engagement se reflète pleinement dans notre processus de recrutement : nous évaluons chaque candidature uniquement au regard des compétences, de l’expérience et de la motivation, sans aucune forme de discrimination.

Si vous avez besoin d’un aménagement spécifique dans le cadre du processus de recrutement, n’hésitez pas à nous en faire part : nous serons ravis de vous accompagner.**

Это сохранённая копия объявления, опубликованного в другом месте. Вакансии снимают без предупреждения — перед откликом проверьте сайт работодателя. mentors.coach не является нанимающей стороной.

Скоро на этой странице

Резюме под эту вакансию — и билет в розыгрыш

Мы разбираем объявление до настоящих требований и переписываем ваше резюме под него — вопросами, а не выдумкой: ни одна строка не появится без вашего подтверждения. Войдите, чтобы получить это первым, — и попасть в розыгрыш.

  • Резюме под конкретную вакансию, а не «универсальное»
  • Ответы хранятся: правится любой, а не весь разговор заново
  • Всё в аккаунте — открывается с любого устройства

Разыгрываем

Скидка на сопровождение

Победителей выбираем случайно среди заявок с подтверждённой почтой. Дата розыгрыша и полные правила — на странице розыгрыша.

Правила розыгрыша

SRE

Senior Backend Engineer

Bridge

Удалённоfulltime

Откликнуться на сайте работодателя

Описание вакансии

We are a global team of Engineers, Product Managers, Designers, and Program Managers across Hungary, the US, and many other countries. We help our customers create work cultures that people love.

About the Product

Bridge is a software that people use for learning, self-development, and growing their careers. Our goal? Help organizations build a culture where people thrive. Curious about what it looks like?

Here is a quick intro:

https://www.youtube.com/watch?v\=IdelswTXQh8

The Reality of the Role: Voyager - Where Challenge Meets Ownership

At Bridge, our success is built on a massive, mission-critical Ruby on Rails monolith. While our strategic future is being built in Kotlin and Spring Boot, the 'engine' of our platform remains in Ruby.

As a member of the Voyager Team, you will be the guardian of this core. You won’t just be maintaining it; you will be the expert who understands its complexity, fixes critical issues, and ensures that new features – whether written in Kotlin or Ruby – integrate seamlessly into our ecosystem.

The Ideals & DNA of a Voyager Engineer

  • 'No Fear' Attitude: You have been in situations where there was no guide, no documentation, and no one else to fix the problem. You had to figure it out on your own. Because you’ve survived complex production crises before, you don’t panic when facing an ugly codebase—you just roll up your sleeves.
  • High Abstract & Conceptual Thinking: Navigating a massive, undocumented monolith requires an exceptional ability to see the 'big picture' through a foggy window. You can easily grasp high-level system architectures and connect the dots between messy legacy logic and modern microservices.
  • Polyglot & Diverse Background: You have a broad history with tech stacks. You aren't emotionally attached to a single language; you’ve worked with multiple technologies, understand their trade-offs, and treat them simply as tools to solve business problems.
  • Direct Communicator: Our team has a strong, opinionated engineering culture. We value honesty, constructive friction, and direct feedback. You aren't easily offended by sharp critique; instead, you look for the objective truth in every technical debate.

Our Tech Stack:

  • Complex Ruby on Rails Web Application ~60% of your time.
  • Java or Kotlin SpringBoot-based REST API development ~40% of your time
  • PostgreSQL database knowledge
  • Cloud Services:
  • AWS Aurora RDS Clusters
  • Apache Pulsar Messaging
  • Debezium Server-based ETL Data Pipeline
  • AWS Neptune Graph Databases
  • AWS OpenSearch
  • DevOps:
  • CI/CD - GitHub Actions, Spinnaker
  • Monitoring - DataDog
  • Terraform
  • Frontend (occasionally): React & TypeScript
  • Tooling: SAFe, JIRA, Confluence, Slack, GSuite
  • Laptop: MacBook Pro

What You Get

  • An async, trust-based culture:
    Work remotely, or come to our Allee office whenever you like.
  • True Autonomy, No Micro-management
    : We don’t track your hours or care when or where you log in; we focus entirely on your impact and results.
  • Design Your Own Workday
    : You have complete freedom to structure your day however it suits your life, whether you need to run errands, pick up your kids, or focus during non-traditional hours.
  • Trust & Availability
    : The only rules are simple: show up for your scheduled meetings, keep the team updated if you step away, and be there to support your teammates when they need a hand.
  • High Transparency, Low Friction
    : We operate on mutual trust—just drop a quick heads-up to the team when you're taking off, and you're good to go.
  • The 'Voyager Perks' – Why It’s Worth It:
  • Modern Dev Tooling
    : We embrace modern engineering efficiency—GitHub Copilot (and other AI assistance tools) are fully provided to help you navigate, map out, and accelerate your work.
  • Real Influence
    : We are frequently consulted on company-wide technical decisions because we understand the system better than anyone else.
  • Elite Mentorship
    : Our team is home to several Guild Leads and long-time contributors. If you want to learn how a large-scale SaaS platform actually works under the hood, there is no better place.
  • Financial stability:
  • We offer you a competitive salary package (1.7 - 2.1M HUF gross/month depending on your seniority),
  • Bonus (based on the performance of the company),
  • Benefits: a comprehensive healthcare package provided by Medicover
    ,
    SZÉP card, and other fringe benefits.

Это сохранённая копия объявления, опубликованного в другом месте. Вакансии снимают без предупреждения — перед откликом проверьте сайт работодателя. mentors.coach не является нанимающей стороной.

SRE

Telco Testing & Monitoring Engineer

Holafly

Удалённоfulltime

Откликнуться на сайте работодателя

Описание вакансии

Company Overview
Holafly is a high-growth scale-up revolutionising how businesses and travellers connect to the internet abroad. Since 2018, we’ve empowered travellers in over 200 destinations worldwide with secure and reliable eSIM solutions. With a team of 800+ professionals across multiple countries, we are scaling globally to support travellers with seamless, unlimited data connectivity.

We’re not just connecting people—we’re enabling freedom and peace of mind, ensuring our users stay connected from the second they land, wherever their journey takes them.

The Role
As a Telecommunications Testing & Monitoring Engineer, you will be responsible for establishing and operating the technical testing and monitoring framework used to measure, validate, and continuously improve connectivity across our global mobile network footprint.

Key Responsibilities

  • Own and operate network testing and monitoring platforms, including SIGOS/Mobileum or similar tools, covering test SIM setup, campaign configuration, scheduling, reporting, and continuous monitoring.
  • Design and execute automated, manual, and IREG testing across global operators for 2G, 3G, 4G/LTE, 5G NSA/SA, new roaming partners, IMSIs, interconnections, and service launches.
  • Perform hands-on troubleshooting and root cause analysis using signalling traces, packet captures, monitoring data, and protocols such as MAP/SS7, Diameter, GTP, DNS and GRX/IPX.
  • Validate roaming, eSIM, and multi-IMSI behaviour, including IMSI selection, network selection, profile behaviour, roaming accessibility, service availability, and go-live readiness.
  • Drive proactive network assurance and performance improvement by building alerts, maintaining testing documentation and operator history, supporting Carrier/Network Operations, and turning technical results into insights for SLA reviews and partner discussions.

Qualifications

  • Proven experience in Mobile Telecommunications, ideally across Network Engineering, Roaming, NOC, Service Assurance, Testing, IREG, or Service Delivery.
  • Strong hands-on expertise with SIGOS/Mobileum or equivalent roaming testing platforms, including test SIM configuration, test cases, automated campaigns, scheduling, and reporting.
  • Practical experience with IREG and international roaming testing, including new operator onboarding, service acceptance, and validation across 3G, LTE, and 5G networks.
  • Good understanding of mobile roaming architecture and eSIM technologies, including SM-DP+, eSIM profiles, multi-IMSI, and network selection behaviour.
  • Strong troubleshooting skills with the ability to analyse network traces, signalling messages, test results, and monitoring data to identify service degradation and root causes.
  • Experience operating telecom monitoring/service assurance tools, combined with strong communication skills to work effectively with engineering teams, roaming partners, carriers, and technology vendors.

Nice-to-haves

  • Knowledge of GRX/IPX, VPLMN/HPLMN architectures and GSMA roaming procedures, including IR.21, IR.24, IR.38 and IR.35.
  • Experience with Wireshark and signalling trace analysis for troubleshooting roaming and network issues.
  • Familiarity with monitoring dashboards, KPI/alerting frameworks, carrier SLAs, roaming agreements and operator performance management.

Benefits & Perks

  • Remote-first culture with a focus on outcome over hours.
  • Flexible working schedule to support your work-life balance.
  • The opportunity to grow within a blameless, collaborative environment that values ownership and continuous improvement.

Это сохранённая копия объявления, опубликованного в другом месте. Вакансии снимают без предупреждения — перед откликом проверьте сайт работодателя. mentors.coach не является нанимающей стороной.

SRE

DevOps Sênior

Docket

Удалённо

Откликнуться на сайте работодателя

Описание вакансии

Descrição da vaga

VEM SER DOCKETEER
A transformação faz parte da nossa história e nos motiva a continuar seguindo em frente, afinal, nós somos protagonistas da mudança. Ser um docketeer é ter nossos valores enraizados no DNA. Na Docket, agimos com responsabilidade e urgência para fazer um trabalho de alta qualidade. Temos empatia e caminhamos juntos para a mesma direção. Respeitamos as diferenças e prezamos pela diversidade. Somos destemidos e fazemos as coisas acontecerem.

Cada um de nós está preparado para superar desafios e passar para a próxima página sempre em busca da melhor versão. Por isso, lideramos pelo exemplo, agimos como donos e somos orientados para o resultado.

Se você, assim como nós, confia nos mesmos propósitos, é a sua oportunidade de participar de algo maior.

Faça parte dessa jornada de evolução incrível.

Responsabilidades e atribuições

  • Como SRE da Docket você será responsável por implantar e operar infraestrutura na AWS segundo requisitos dos clientes internos através de IaC;
  • Por automatizar processos de integração e publicação contínua de software;
  • Difundir cultura DevOps na empresa - trabalhar perto do time de desenvolvimento e atender a demandas de suporte Devops;
  • Trabalhar junto à equipes de desenvolvedores na criação de containers, pipelines e deploys para o Kubernetes;
  • Implementar soluções de monitoramento de desempenho e de alarmística na Cloud e Kubernetes;
  • Automatização de processo via scripts/código;
  • Gerar documentação e diagramas das soluções de infraestrutura;
  • Gerenciar clusters de Kubernetes de alta disponibilidade, assegurando a operação contínua e eficaz das aplicações;
  • Empregar técnicas de análise de logs para identificar, diagnosticar e corrigir erros, melhorando a robustez e a estabilidade dos sistemas;
  • Disponibilidade para realizar deploys de novas aplicações e manutenção nos serviços de infraestrutura em janelas de tempo especial, fora do horário comercial, minimizando impactos nos serviços críticos.

Requisitos e qualificações

  • Experiência prática na gestão de acessos via IAM;
  • Experiência prática na gestão de serviços rodando em Kubernets;
  • Experiência prática na criação de infraestrutura usando Terraform;
  • Experiência no uso avançado de Linux;
  • Inglês técnico fluente.

Habilidades Comportamentais

  • Capacidade de trabalhar eficazmente em equipe e se comunicar claramente com colegas de equipe;
  • Senso de dono das atividades executadas e soluções propostas;
  • Autodidata;
  • Curiosidade em aprender e entregar as demandas acordadas;
  • Ter atenção aos detalhes para garantir entregas com qualidade;
  • Ser capaz de organizar e priorizar suas atividades.

Informações adicionais

Vantagens
Na Docket, a gente sabe que os detalhes fazem toda a diferença! Aqui, oferecemos um pacote de benefícios incríveis, dá uma olhada:

🥗 Vale Refeição e Alimentação no Flash para quando bate aquela fome.

🏥 Plano de saúde e odontológico para cuidar bem de você.

🛡️ Seguro de vida para garantir tranquilidade.

🐶 Petlove, pois na Docket entendemos que a sua família peluda também é importante.

🏊‍♀️ Conexa Saúde, suporte psicológico ao alcance dos seus dedos.

🏋️ Wellhub e TotalPass para manter o corpo em movimento.

📚 Galena, porque aprender e se desenvolver é fundamental!

🏊‍♀️ Parceria com Sesc, lazer e cultura à disposição.

👶 Auxílio-creche para as mamães e papais com crianças até 5 anos.

💰 Baby Cash quando a família cresce.

🎉Day Off no mês do seu aniversário para comemorar como merece.

🕜 Horário: 44 horas semanais

Na Docket, valorizamos o seu bem-estar e o seu desenvolvimento. Venha fazer parte do nosso time e aproveitar esses benefícios incríveis! 💙🚀

Modelo De Trabalho
🏢 Local: Pinheiros (modelo híbrido com 4x presencial e 1x home office)

Sobre nós

JUNTE-SE AO NOVO PADRÃO PARA LIDAR COM DOCUMENTOS
Somos a maior legaltech do Brasil, com uma tecnologia que conecta empresas a +35 mil órgãos públicos, tornando a obtenção e a análise de documentos mais rápidas, seguras e estratégicas.
Mais que uma plataforma, somos a infraestrutura por trás das operações, impulsionando negócios com a melhor experiência e o menor tempo de resposta do mercado.

Это сохранённая копия объявления, опубликованного в другом месте. Вакансии снимают без предупреждения — перед откликом проверьте сайт работодателя. mentors.coach не является нанимающей стороной.

SRE

Senior Cloud Network Engineer & Architect (remote-only, worldwide remote)

CloudLinux

Удалённоsenior

Откликнуться на сайте работодателя

Описание вакансии

CloudLinux and TuxCare
build Linux, security, and enterprise infrastructure products used by hosting providers, software vendors, and engineering teams around the world. The Infrastructure team runs the platforms behind that work: data centers, public cloud providers, OpenNebula, Kubernetes/Talos, Ceph, CI/CD, observability, identity and access systems, and internal services.

We are hiring a hands-on
Senior Cloud Network Engineer & Architect
to own and evolve the network layer of our hybrid infrastructure. This is an engineering role with real architecture ownership: you will design, implement, monitor, document, automate, secure, and troubleshoot production networking across data centers, cloud regions, Kubernetes/Talos clusters, OpenNebula environments, and bare metal.

This is a technical ownership role. It is not a diagrams-only architecture position, and it is not a people-management role. You will define technical solutions, ship production changes, verify behavior, support incidents, and leave behind the runbooks, diagrams, and automation that make the next change safer.

How We Work:
We are a remote-first Infrastructure team organized into small senior cells. You will work with one existing network engineer, core infrastructure engineers, and adjacent Infrastructure teams. Networking is a high-impact shared dependency, so we value calm incident work and automation that reduces repeat pressure. The value of this role is turning complex demand into reliable systems, clear ownership, safer changes, and observable operations.

This role is a strong fit if you enjoy moving between architecture, packet captures, production configuration, monitoring, runbooks, rollback plans, and failure drills. You should want real ownership of cross-DC, on-prem, private cloud, and public/provider infrastructure.

It is probably not the right fit if you are looking for a pure architecture role, a large dedicated network team, only planned project work, no incident participation, or manual CLI-only changes without documentation, review, automation, and validation.

What You Will Own:

  • Design and operate reliable cross-DC and hybrid connectivity across IPsec, BGP, routing policy, firewalling, DNS, Cloudflare, provider networking, and cloud connectivity
  • Build highly available network paths across data centers, public cloud providers, OpenNebula, Kubernetes/Talos, and bare-metal infrastructure
  • Own network changes end to end: design, risk assessment, peer review, rollout, monitoring, validation, rollback, and post-change notes
  • Replace fragile manual patterns with documented, observable, repeatable services using Git review, automation, scripts, source-of-truth data, and monitoring
  • Debug and resolve production incidents involving Linux networking, BIRD/FRR, strongSwan, Juniper JunOS, firewalls, Cloudflare, DNS, MTU/MSS, asymmetric routing, NAT/conntrack, packet loss, Kubernetes CNI behavior, and provider constraints
  • Maintain architecture documents, topology diagrams, HLD/LLD specs, runbooks, disaster recovery procedures, configuration snapshots, IPAM/source-of-truth data, and operational handoff material
  • Work closely with IaaS, SRE/Observability, Security, Automation/Data, Platform, Service Delivery, and product teams

What Success Looks Like:

  • Critical cross-DC and provider network paths are easier to understand, monitor, change, and recover
  • Manual or one-off network changes are reduced through documented workflows, automation, review, and validation
  • Network observability improves: alert quality, synthetic checks, flow or telemetry data, and practical SLO thinking become part of normal operations
  • IPAM, routing intent, firewall rule lifecycle, and ownership data are clearer in the source of truth
  • Incidents and maintenance windows have calm execution, clear communication, and useful follow-up notes

Requirements
What You Bring:

  • Senior production networking experience in environments where availability matters
  • Strong BGP and routing fundamentals: prefix filtering, communities, route policy, failover, BFD or similar mechanisms, asymmetric routing, traffic steering, and debugging
  • Strong IPsec, VPN, and site-to-site connectivity experience, ideally with strongSwan or similar tooling
  • Deep Linux networking knowledge: iproute2, tcpdump, nftables/iptables, conntrack, system networking, DNS behavior, NIC/offload basics, and MTU/MSS troubleshooting
  • Datacenter networking fundamentals: VLANs, LACP, switching, firewalls, optics/cabling awareness, maintenance windows, and backup/recovery practices
  • Cloud and provider networking experience: VPC/VNet-style networks, CIDR planning, route tables, security groups/NACLs/firewalls, NAT/egress, VPN, load balancers, DNS, and provider limitations
  • Kubernetes networking fundamentals: CNI, Services, Ingress, NetworkPolicy, node/pod/service paths, egress control, DNS, load balancing, and packet-level troubleshooting
  • AI-Augmented Engineering: You don't view AI as a replacement for deep technical fundamentals, but as a high-leverage tool. We actively use AI agents (Claude, Codex, Gemini, etc.) to automate boilerplate, analyze complex logs, and speed up research. We expect you to be open to modern workflows and integrate AI into your day-to-day operations, allowing you to focus your brainpower on the true architectural challenges
  • Network observability and performance mindset: telemetry, flow logs, synthetic checks, bandwidth and latency analysis, packet loss, jitter, saturation, and provider or appliance limits
  • Network security operations: segmentation, firewall rule lifecycle, least privilege, AAA concepts, secrets handling, and safe maintenance-window discipline
  • Comfort with infrastructure automation using scripting, APIs, Ansible, Terraform/OpenTofu, Git-based reviews, repeatable rollouts, and configuration validation
  • Clear written communication in remote and asynchronous teams: change plans, incident updates, runbooks, risk statements, rollback plans, and owner/date commitments
  • Sound judgment under uncertainty: you can make bounded decisions, but you verify production impact and blast radius before acting

Nice to Have:
These capabilities are beneficial but not mandatory for every candidate.

  • Juniper JunOS, QFX/EX/SRX platforms, EVPN/VXLAN, MLAG/MC-LAG, ECMP, or leaf-spine network topologies
  • BIRD/FRR, anycast routing, RPKI/ROA/ROV validation, IRR, bogon filtering, route-leak mitigation, or public BGP routing operations
  • Network automation and documentation platforms such as NetBox/Nautobot, Oxidized, GitLab CI/CD, Batfish, containerlab, pyATS, NAPALM, or SuzieQ
  • Hetzner, Cloudflare Zero Trust/DNS/LB/WAF, AWS Transit Gateway, Direct Connect concepts, PrivateLink/VPC endpoints, or Route 53
  • Cilium, Calico, MetalLB, Gateway API, service mesh concepts, OpenNebula networking, Ceph/storage networking, IPv6/dual-stack, DDoS-aware design, SLOs, postmortems, or safe firewall governance

Benefits
What's in it for you?

  • A focus on professional development
  • Interesting and challenging projects
  • Fully remote work with flexible working hours, that allows you to schedule your day and work from any location worldwide
  • Paid 24 days of vacation per year, 10 days of national holidays, and unlimited sick leaves
  • Compensation for private medical insurance
  • Co-working and gym/sports reimbursement
  • Budget for education
  • The opportunity to receive a reward for the most innovative idea that the company can patent

By applying for this position, you consent to the processing of your personal data as described in our Privacy Policy (
https://cloudlinux.com/candidate\-privacy\-notice
), which provides detailed information on how we maintain and handle your data.

Это сохранённая копия объявления, опубликованного в другом месте. Вакансии снимают без предупреждения — перед откликом проверьте сайт работодателя. mentors.coach не является нанимающей стороной.

Ещё 144 вакансии по этой категории в этой стране

Defensive security engineer (F/N/H)leboncoin · France

Откликнуться на сайте работодателя
Defensive security engineer (F/N/H) — leboncoin | mentors.coach